3Com Switch 8800 Family IPsec Module Configuration and Command reference Guide

2
IPSEC MODULE CONFIGURATION
IPsec Module
Configuration
To make the Switch 8800 Family routing switch and IPsec module work together,
you need to configure the IPsec module on the switch by:
“Configuring the Interface Aggregation”
“Creating the IPsec Module”
“Specifying the Layer 3 Interface Connecting the Switch and IPsec module”
“Specifying the VLAN Protected by the IPsec module”
“Mapping the IPsec module to a slot”
“Logging into the IPsec module”
“Configuring Default Login User Function” (Optional)
Configuring the
Interface Aggregation
Two internal GigabitEthernet interfaces connect the IPsec module to the switch.
You can aggregate these two interfaces into a logical interface to provide broader
interface bandwidth. Perform the following configuration in switch system view.
By default, the interface is not aggregated. Only one GigabitEthernet interface can
be used.
c
CAUTION: When you use the secblade aggregation slot command to configure
aggregation of IPsec module interfaces, the IPsec module will occupy the
resources occupied by other aggregation groups if aggregation resources are not
enough.
Creating the IPsec
Module
To make the IPsec module and Switch 8800 Family switch work together, first
create a IPsec module to enter IPsec module view.
Perform the following configuration in switch system view.
Tab le 2 Configure the IPsec module interface aggregation
Operation Command
Configure aggregation of
two GE interfaces
secblade aggregation slot slot-number
Cancel the configuration undo secblade aggregation slot slot-number
Tab le 3 Create the IPsec module
Operation Command
Create the IPsec module Secblade sec-mod-name
Remove the IPsec module undo secblade sec-mod-name